| BACKDOORS |
| Win32.Backdoor.Fosen |
Backdoors may open up ports on the compromised computer, allowing remote access and control of the victim's machine. |
| Win32.Backdoor.Hrvg |
| Win32.Backdoor.Imort |
| Win32.Backdoor.Inuk |
| Win32.Backdoor.Janker |
| Win32.Backdoor.Jord |
| Win32.Backdoor.Jtram |
| Win32.Backdoor.JustJoke |
| Win32.Backdoor.Killtroj |
| Win32.Backdoor.LanaFTP |
| Win32.Backdoor.Last2000 |
| Win32.Backdoor.Nefutur |
| Win32.Backdoor.Nemesis |
| Win32.Backdoor.Penrox |
| Win32.Backdoor.Pipes |
| Win32.Backdoor.Qrat |
| Win32.Backdoor.Remoper |
| Win32.Backdoor.RemoteHack |
| Win32.Backdoor.Retribution |
| Win32.Backdoor.Rosyba |
| Win32.Backdoor.Rserver |
| Win32.Backdoor.RSM |
| Win32.Backdoor.RTB |
| Win32.Backdoor.SchoolBus |
| Win32.Backdoor.Sean |
| Win32.Backdoor.Sepro |
| Win32.Backdoor.SerialPager |
| Win32.Backdoor.Shaden |
| Win32.Backdoor.SheepGoat |
| Win32.Backdoor.Sherlock |
| Win32.Backdoor.Silencer |
| Win32.Backdoor.SkSocket |
| Win32.Backdoor.SkyDance |
| Win32.Backdoor.Spookdoor |
| Win32.Backdoor.Subsari |
| Win32.Backdoor.Supcount |
| Win32.Backdoor.Sysad |
| Win32.Backdoor.SystemDebug |
| Win32.Backdoor.T06 |
| Win32.Backdoor.Talex |
| Win32.Backdoor.Tasmer |
| Win32.Backdoor.ThunderKiss |
| Win32.Backdoor.Titidoor |
| Win32.Backdoor.Tiul |
| Win32.Backdoor.Tourniq |
| Win32.Backdoor.Tsunami |
| Win32.Backdoor.Uhil |
| Win32.Backdoor.Whisper |
| Win32.Backdoor.Wollf |
| Win32.Backdoor.XConsole |
| Win32.Backdoor.XHX |
| Win32.Backdoor.Zalivator |
| Win32.Backdoor.Zany |
| Win32.Backdoor.Zombam |
| Win32.Backdoor.Rootcip |
| Win32.Backdoor.Silly |
| Win32.Backdoor.SkyFire |
| Win32.Backdoor.SkyRat |
| Win32.Backdoor.Slandor |
| Win32.Backdoor.SpyKing |
| Win32.Backdoor.Tjspec |
| Win32.Backdoor.TMS |
| Win32.Backdoor.Ultor |
| Win32.Backdoor.Under |
| Win32.Backdoor.Undernet |
| Win32.Backdoor.Wowhack |
| Win32.Backdoor.Wukaz |
| Win32.Backdoor.Xanadu |
| Win32.Backdoor.XBot |
| Win32.Backdoor.Zenmaster |
| Win32.Backdoor.Zerg |
| Win32.Backdoor.Elfnet |
| Win32.Backdoor.Eljefe |
| Win32.Backdoor.Filth |
| Win32.Backdoor.Frapes |
| Win32.Backdoor.Fratool |
| Win32.Backdoor.Gaura |
| Win32.Backdoor.Gbot |
| Win32.Backdoor.HackPack |
| Win32.Backdoor.Hftp |
| Win32.Backdoor.InetWatch |
| Win32.Backdoor.Insect |
| Win32.Backdoor.InsultMedia |
| Win32.Backdoor.Izeburn |
| Win32.Backdoor.Kikz |
| Win32.Backdoor.Klepto |
| Win32.Backdoor.Kronikal |
| Win32.Backdoor.Mayhem |
| Win32.Backdoor.MDM |
| Win32.Backdoor.MeetTheLamer |
| Win32.Backdoor.Metarage |
| Win32.Backdoor.MeteorBot |
| Win32.Backdoor.Mutabor |
| Win32.Backdoor.Mydons |
| Win32.Backdoor.Nakter |
| Win32.Backdoor.Nao |
| Win32.Backdoor.NetSnooper |
| Win32.Backdoor.Nucker |
| Win32.Backdoor.Nucledor |
| Win32.Backdoor.Nutbus |
| Win32.Backdoor.Nyrobot |
| Win32.Backdoor.Pet |
| Win32.Backdoor.Petador |
| Win32.Backdoor.Predator |
| Win32.Backdoor.Redghost |
| Win32.Backdoor.RedHacker |
| Win32.Backdoor.RedHors |
| Win32.Backdoor.Remotcon |
| Win32.Backdoor.RemoteConnection |
| Win32.Backdoor.Revenger |
| Win32.Backdoor.Revise |
| Win32.Backdoor.RMFdoor |
| Win32.Backdoor.RMT |
| Win32.Backdoor.RtKit |
| Win32.Backdoor.Shabo |
| Win32.Backdoor.Sinit |
| Win32.Backdoor.Sixer |
| Win32.Backdoor.SlenfBot |
| Win32.Backdoor.Spydoor |
| Win32.Backdoor.Spyhuq |
| Win32.Backdoor.Sytr |
| Win32.Backdoor.T543 |
| Win32.Backdoor.Titanium |
| Win32.Backdoor.Toledorz |
| Win32.Backdoor.Tramin |
| Win32.Backdoor.Transistor |
| Win32.Backdoor.Unwind |
| Win32.Backdoor.Upfudoor |
| Win32.Backdoor.Uploader |
| Win32.Backdoor.Vatos |
| Win32.Backdoor.Wifer |
| Win32.Backdoor.Wilba |
| Win32.Backdoor.Winroot |
| Win32.Backdoor.WinSatan |
| Win32.Backdoor.VisualServer |
| Win32.Backdoor.VoiceSpy |
| Win32.Backdoor.Voodoo |
| Win32.Backdoor.XZone |
| Win32.Backdoor.Y2Kcount |
| Win32.Backdoor.Yat |
| Win32.Backdoor.YLYShell |
| Win32.Backdoor.Youpeer |
| Win32.Backdoor.Comlabat |
| Win32.Backdoor.Brewer |
| Win32.Backdoor.ioFtpd |
| Win32.Backdoor.Krepper |
| Win32.Backdoor.Resumdor |
| Win32.Backdoor.Senik |
| Win32.Backdoor.Tonerok |
| Win32.Backdoor.Depot |
| Win32.Backdoor.H3 |
| Win32.Backdoor.Loony |
| Win32.Backdoor.Xhaker |
| Win32.Backdoor.XPthree |
| Win32.Backdoor.LeVision |
| Win32.Backdoor.Zapulko |
| DOWNLOADERS |
| Win32.Downloader.Apher |
Downloaders are programs designed to retrieve and install additional files. Downloaders can be useful tools for consumers to automate upgrades of essential software such as operating system upgrades, browsers, anti-virus applications, anti-spyware tools, games and other useful applications. Unauthorized downloaders are used by third parties to download potentially unwanted software without user notification or consent. |
| Win32.Downloader.Setial |
| Win32.TrojanDownloader.Stubby |
| Win32.TrojanDownloader.Comet |
| Win32.TrojanDownloader.Cray |
| Win32.TrojanDownloader.Greetyah |
| Win32.TrojanDownloader.G-Spot |
| Win32.TrojanDownloader.Guardian |
| Win32.TrojanDownloader.Gunix |
| Win32.TrojanDownloader.Jexprox |
| Win32.TrojanDownloader.Junet |
| Win32.TrojanDownloader.LiveUp |
| Win32.TrojanDownloader.Lol |
| Win32.TrojanDownloader.Mendwar |
| Win32.TrojanDownloader.Micro |
| Win32.TrojanDownloader.Minstaller |
| Win32.TrojanDownloader.Pomponi |
| Win32.TrojanDownloader.Pornet |
| Win32.TrojanDownloader.Presario |
| Win32.TrojanDownloader.Procexe |
| Win32.TrojanDownloader.Pupper |
| Win32.TrojanDownloader.Dozdl |
| Win32.TrojanDownloader.Drap |
| Win32.TrojanDownloader.Iowa |
| Win32.TrojanDownloader.Krepper |
| Win32.TrojanDownloader.NoName |
| Win32.TrojanDownloader.Nooper |
| Win32.TrojanDownloader.Petrolin |
| Win32.TrojanDownloader.Pitux |
| Win32.TrojanDownloader.Renegad |
| Win32.TrojanDownloader.Revop |
| Win32.TrojanDownloader.Rotarran |
| Win32.TrojanDownloader.SpyAgent |
| Win32.TrojanDownloader.Ultimx |
| Win32.TrojanDownloader.Aqtemp |
| Win32.TrojanDownloader.Fokin |
| Win32.TrojanDownloader.Clisser |
| Win32.TrojanDownloader.Gooochi |
| Win32.TrojanDownloader.PCClient |
| Win32.TrojanDownloader.Pugeju |
| Win32.TrojanDownloader.Bambs |
| Win32.TrojanDownloader.Lastad |
| Win32.TrojanDownloader.SecondThought |
| Win32.TrojanDownloader.Vixup |
| Win32.TrojanDownloader.FTPod |
| Win32.TrojanDownloader.Mypay |
| Win32.TrojanDownloader.Pendix |
| Win32.TrojanDownloader.Todon |
| Win32.TrojanDownloader.Maresa |
| Win32.TrojanDownloader.IEAVCodec |
| Win32.TrojanDownloader.Fearless |
| Win32.TrojanDownloader.Sfn |
| Win32.TrojanDownloader.Tearspear |
| PASSWORD STEALERS |
| Win32.Trojan-PWS.Alerternt |
Password stealers can steal user passwords on an infected system, compromising system security and user privacy. |
| Win32.Trojan-PWS.Amenby |
| Win32.Trojan-PWS.Aras |
| Win32.Trojan-PWS.Caca |
| Win32.Trojan-PWS.Citifraud |
| Win32.Trojan-PWS.Crazer |
| Win32.Trojan-PWS.Deintel |
| Win32.Trojan-PWS.Firtal |
| Win32.Trojan-PWS.Freeone |
| Win32.Trojan-PWS.Mirpin |
| Win32.Trojan-PWS.Netax |
| Win32.Trojan-PWS.Shrin |
| Win32.Trojan-PWS.Sniffor |
| Win32.Trojan-PWS.Zipun |
| Win32.Trojan-PWS.Aletc |
| Win32.Trojan-PWS.Apem |
| Win32.Trojan-PWS.Aquafish |
| Win32.Trojan-PWS.Arpa |
| Win32.Trojan-PWS.Atomic |
| Win32.Trojan-PWS.Atrar |
| Win32.Trojan-PWS.Fixerror |
| Win32.Trojan-PWS.Goti |
| Win32.Trojan-PWS.Grabber |
| Win32.Trojan-PWS.Greg |
| Win32.Trojan-PWS.Huopass |
| Win32.Trojan-PWS.Iceman |
| Win32.Trojan-PWS.ICQDelf |
| Win32.Trojan-PWS.Navral |
| Win32.Trojan-PWS.Nemotron |
| Win32.Trojan-PWS.QQGame |
| Win32.Trojan-PWS.QQgetPass |
| Win32.Trojan-PWS.QQMusic |
| Win32.Trojan-PWS.QQNum |
| Win32.Trojan-PWS.QQShou |
| Win32.Trojan-PWS.QQSpy |
| Win32.Trojan-PWS.Salva |
| Win32.Trojan-PWS.Santosa |
| Win32.Trojan-PWS.Sendkey |
| Win32.Trojan-PWS.SMTPTest |
| Win32.Trojan-PWS.Thif |
| Win32.Trojan-PWS.Vxskey |
| Win32.Trojan-PWS.Xport |
| Win32.Trojan-PWS.XpPasslogger |
| Win32.Trojan-PWS.Basi |
| Win32.Trojan-PWS.Belial |
| Win32.Trojan-PWS.Brain |
| Win32.Trojan-PWS.Brutus |
| Win32.Trojan-PWS.Faxu |
| Win32.Trojan-PWS.Hazif |
| Win32.TrojanPWS.Heak |
| Win32.TrojanPWS.HermanAgent |
| Win32.TrojanPWS.Kedad |
| Win32.TrojanPWS.Kervar |
| Win32.Trojan-PWS.Maul |
| Win32.Trojan-PWS.Mefs |
| Win32.Trojan-PWS.Misos |
| Win32.Trojan-PWS.QQeye |
| Win32.Trojan-PWS.QQHacker |
| Win32.Trojan-PWS.Qwz |
| Win32.Trojan-PWS.WebCamNow |
| Win32.Trojan-PWS.Winpwd |
| Win32.Trojan-PWS.Zagaban |
| Win32.TrojanPWS.OrkutPass |
| Win32.Trojan-PWS.Tibia |
| TROJAN.CLICKERS |
| Win32.TrojanClicker.Exploider |
Trojan.Clickers may cause the victim's machine to contact a target webpage without the user's knowledge or consent to falsify data about the number of times the webpage is visited. |
| Win32.TrojanClicker.Ledos |
| Win32.TrojanClicker.Libie |
| Win32.TrojanClicker.Lopin |
| Win32.TrojanClicker.Mangto |
| Win32.TrojanClicker.Mobs |
| Win32.TrojanClicker.Zerro |
| Win32.TrojanClicker.Cibula |
| Win32.TrojanClicker.IntelliAdvert |
| Win32.TrojanClicker.Jpgnet |
| Win32.TrojanClicker.Morwill |
| Win32.TrojanClicker.Oleloa |
| Win32.TrojanClicker.Qabar |
| Win32.TrojanClicker.Redir |
| TROJAN.DROPPERS |
| Win32.Trojan-Dropper.FC |
Trojan.Droppers will drop additional files on the infected system. These files are often other Trojans or downloaders. |
| Win32.Trojan-Dropper.Glue |
| Win32.Trojan-Dropper.Ineb |
| Win32.Trojan-Dropper.Lazarus |
| Win32.Trojan-Dropper.Pakes |
| Win32.Trojan-Dropper.BHO |
| Win32.Trojan-Dropper.Exec |
| Win32.Trojan-Dropper.Fesber |
| Win32.Trojan-Dropper.MSWord.Agent |
| Win32.Trojan-Dropper.Pecodrop |
| Win32.Trojan-Dropper.PegaJoiner |
| Win32.Trojan-Dropper.Pizdrop |
| Win32.Trojan-Dropper.Sekan |
| Win32.Trojan-Dropper.SendWM |
| Win32.Trojan-Dropper.Sobig |
| Win32.Trojan-Dropper.SOFTWAR |
| Win32.Trojan-Dropper.Sohs |
| Win32.Trojan-Dropper.Spon |
| Win32.Trojan-Dropper.SpoofBot |
| Win32.Trojan-Dropper.Star |
| Win32.Trojan-Dropper.Valsday |
| Win32.Trojan-Dropper.WinAD |
| Win32.Trojan-Dropper.Winmult |
| Win32.Trojan-Dropper.Wolfst |
| Win32.Trojan-Dropper.Xaw |
| Win32.Trojan-Dropper.Daoh |
| Win32.Trojan-Dropper.Dater |
| Win32.Trojan-Dropper.DBL |
| Win32.Trojan-Dropper.Googite |
| Win32.Trojan-Dropper.GR |
| Win32.Trojan-Dropper.Gred |
| Win32.Trojan-Dropper.Loring |
| Win32.Trojan-Dropper.Wardat |
| Win32.Trojan-Dropper.Vigvam |
| Win32.TrojanDropper.Teesken |
| Win32.Trojan-Dropper.Binder |
| Win32.TrojanDropper.BSOD |
| Win32.TrojanDropper.Mutant |
| Win32.TrojanDropper.Parsi |
| TROJAN.SPIES |
| Win32.TrojanSpy.Coiboa |
Trojan.Spies are a type of malicious program that can steal information such as passwords, surfing habits, credit card details and e-mail addresses. |
| Win32.TrojanSpy.Dumarin |
| Win32.TrojanSpy.Globar |
| Win32.TrojanSpy.Kaiserlog |
| Win32.TrojanSpy.Paladin |
| Win32.TrojanSpy.Passoner |
| Win32.TrojanSpy.WinEggDrop |
| Win32.TrojanSpy.WMPatch |
| Win32.TrojanSpy.Yitai |
| Win32.TrojanSpy.Aimspy |
| Win32.TrojanSpy.Apikey |
| Win32.TrojanSpy.Dgs |
| Win32.TrojanSpy.Excon |
| Win32.TrojanSpy.FakeUnit |
| Win32.TrojanSpy.Hotworld |
| Win32.TrojanSpy.Keystate |
| Win32.TrojanSpy.KeyTrap |
| Win32.TrojanSpy.Mslagent |
| Win32.TrojanSpy.MSNLogThief |
| Win32.TrojanSpy.Muon |
| Win32.TrojanSpy.PCspy |
| Win32.TrojanSpy.DoubleWM |
| Win32.TrojanSpy.Harvester |
| Win32.TrojanSpy.Hookey |
| Win32.TrojanSpy.HookInput |
| Win32.TrojanSpy.HttpLogger |
| Win32.TrojanSpy.IamBigBrother |
| Win32.TrojanSpy.Nags |
| Win32.TrojanSpy.PestLogger |
| Win32.TrojanSpy.Skin98 |
| Win32.TrojanSpy.TapTrap |
| Win32.TrojanSpy.Taskplaner |
| Win32.TrojanSpy.Temporizador |
| Win32.TrojanSpy.Luzia |
| Win32.TrojanSpy.FTPSend |
| Win32.TrojanSpy.PCAgent |
| MISCELLANEOUS MALWARE |
This grouping contains other programs with malicious intentions. |
| Recipetoolbar |
Recipetoolbar is a search toolbar. The searches are made through http://www.fastseekers.com. The toolbar is installed an all user accounts and is missing both a privacy policy and EULA during the installation. |
| Win32.Hoax.Fera |
Win32.Hoax.Fera is a hoax application that can generate false security alerts that may warn users about potential spyware operations. The application may try to trick the user to download a rogue anti-spyware application. Win32.Hoax.Fera copies itself to several startup locations in order to load automatically at system startup. |
| Win32.Hoax.Welvirus |
Win32.Hoax.Welvirus is a joke program that may mimic the actions of other applications causing different forms of false alerts. It may also download other software automatically to the system, for example, rogue anti-spyware applications. |
| Win32.Hoax.Gavec |
Win32.Hoax.Gavec is a joke program that may mimic the actions of other applications causing different forms of false alerts. It may also download other software automatically to the system, for example, rogue anti-spyware applications. |
| Win32.Swf.Exploit |
Win32.Swf.Exploit are SWF or Flash files that are created in order to exploit vulnerabilities in the users' Flash Player. |
| Hacktool.WinLocker |
Hacktool.WinLocker locks up Windows by disabling key combinations (like alt+f4 and alt+tab). It will also remove the taskbar from view. Hacktool.WinLocker can be used to hijack a machine. |
| Win32.Rootkit.Clbd |
Win32.Rootkit.Clbd is malware that prevents its removal by hiding its presence by concealing running processes, files or data from the infected operating system. The malware may not be detected by system utilities, security related applications, or by users on the infected system. This malware may have to be removed manually. Affected users may seek further help at the Lavasoft Support Forums. |
| Win32.Rootkit.HideProc |
Win32.Rootkit.HideProc is malware that prevents its removal by hiding its presence by concealing running processes, files or data from the infected operating system. The malware may not be detected by system utilities, security related applications, or by users on the infected system. This malware may have to be removed manually. Affected users may seek further help at the Lavasoft Support Forums. |
| Win32.Rootkit.KernelBot |
Win32.Rootkit.KernelBot is malware that prevents its removal by hiding its presence by concealing running processes, files or data from the infected operating system. The malware may not be detected by system utilities, security related applications, or by users on the infected system. This malware may have to be removed manually. Affected users may seek further help at the Lavasoft Support Forums. |
| Win32.Rootkit.Qandr |
Win32.Rootkit.Qandr is malware that prevents its removal by hiding its presence by concealing running processes, files or data from the infected operating system. The malware may not be detected by system utilities, security related applications, or by users on the infected system. This malware may have to be removed manually. Affected users may seek further help at the Lavasoft Support Forums. |